Microsoft’s AppLocker Flaw Allows Malicious Apps to Run and Bypass Restrictions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical configuration flaw in Microsoft’s AppLocker block list policy has been discovered, revealing how attackers could potentially bypass security restrictions through a subtle versioning error.  The issue centers on …

Surveillance Company Using SS7 Bypass Attack to Track the User’s Location Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A surveillance company has been detected exploiting a sophisticated SS7 bypass technique to track mobile phone users’ locations. The attack leverages previously unknown vulnerabilities in the TCAP (Transaction Capabilities Application …

APT41 Hackers Leveraging Atexec and WmiExec Windows Modules to Deploy Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious Chinese-speaking cyberespionage group APT41 has expanded its operations into new territories, launching sophisticated attacks against government IT services across Africa using advanced Windows administration modules. This represents a …

Dell Data Breach – Test Lab Platform Hacked by World Leaks Group

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Dell Technologies has confirmed a security breach of its Customer Solution Centers platform by the World Leaks extortion group, marking another high-profile attack by the newly rebranded threat actor.  The …

CISA Warns of Microsoft SharePoint Server 0-Day RCE Vulnerability Exploited in Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has issued an urgent warning about a critical zero-day remote code execution vulnerability affecting Microsoft SharePoint Server on-premises installations that threat actors are actively exploiting in the wild. The …

Lighthouse Studio RCE Vulnerability Let Attackers Gain Access to Hosting Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical remote code execution vulnerability has been discovered in Lighthouse Studio, one of the most widely deployed yet relatively unknown survey software platforms developed by Sawtooth Software. The flaw, …

Livewire Vulnerability Exposes Millions of Laravel Apps to Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability in Laravel’s Livewire framework has been discovered that could expose millions of web applications to remote code execution (RCE) attacks.  The flaw, designated as CVE-2025-54068, affects …

New KAWA4096’s Ransomware Leverages Windows Management Instrumentation to Delete Shadow Copies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new ransomware strain named KAWA4096 has emerged in the cybersecurity landscape, showcasing advanced evasion techniques and borrowing design elements from established threat actors. Named after the Japanese word …

CoinDCX Hacked – $44.2 million Wiped off From the Platform

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

India’s second-largest cryptocurrency exchange, CoinDCX, confirmed a sophisticated security breach on July 19, 2025, resulting in approximately $44.2 million being stolen from the platform. This incident marks another significant cyberattack …